We are looking for a detail-oriented and proactive GRC (Governance, Risk, and Compliance) Analyst to join our team. This role will be based in Dublin and will support operations aligned with U.S. Central and Eastern time zones. The GRC Analyst will report to the GRC Manager contributing to the day-to-day execution of compliance programs, audit preparation, risk assessments, and overall security governance efforts.
This is a hands-on role, ideal for someone who thrives in a collaborative, fast-paced environment and is passionate about security, compliance, and AI Governance.
Risk Management
· Assist in performing vendor risk reviews, including due diligence assessments for new vendors and annual reassessments for existing vendors.
· Maintain the central risk register, ensuring risks are accurately documented, assessed, and tracked through to remediation or acceptance.
· Participate in regular risk management forums including risk management meetings with key stakeholders to review risk posture, progress on mitigation activities, and emerging risks.
· Monitor and track remediation actions, escalating risks and issues where required to ensure timely resolution.
Audit Activities
· Participate in external and internal audits for PCI, HIPAA, IRAP, TISAX, SOC2, SOC1, ISO 27001, ISO 42001, and other relevant certifications.
· Prepare audit evidence, coordinate with external auditors, and ensure timely and successful audit outcomes.
· Maintain audit calendars, track deliverables, and ensure ongoing audit readiness.
· Perform detailed controls testing, document results, and support remediation of findings.
GRC Tooling & Implementation
· Assist in configuration and maintenance of GRC tooling to automate compliance workflows, evidence collection, and controls testing.
· Provide subject matter expertise on GRC tool capabilities and best practices.
· Support internal teams on GRC tool usage and compliance processes.
Governance & Emerging Regulations
· Responsible for developing, maintaining, and updating policies, standards, and procedures, while ensuring ongoing compliance with regulatory, audit, and internal governance requirements.
· Support the development and maintenance of the ISMS and AIMS in compliance with ISO 27001 and ISO 42001.
Cross-Functional Collaboration
· Work closely with Engineering, Product, Legal, Data Protection, Procurement, and IT teams to support compliance initiatives and ensure timely completion of action items.
· Provide ongoing support and clarity to teams on compliance tasks and expectations.
Reporting & Documentation
· Prepare and deliver status reports, dashboards, and metrics on GRC activities for leadership and stakeholders.
· Ensure compliance documentation is consistently updated and centrally stored (e.g., SharePoint, Jira, Confluence).